GitHub Codespaces Flaw Lets Attackers Execute Code
Default VS Code configurations in GitHub Codespaces enable attackers to trigger remote code execution via malicious repositories or pull requests, risking token and secret theft.
Source: Orca Security
Read more: CyberSecBrief























